Security Basics mailing list archives

Re: Threat vector of running a service using a domain account


From: "Ali, Saqib" <docbook.xml () gmail com>
Date: Wed, 12 Sep 2007 06:58:43 -0700

I can't reveal the name of the application, but it is 3rd party non-MS
application.

The reasons it puts itself in the Domain Admin group is that it needs
administrative access to the client computers. And Domain Admin group
is part of the Local Administrator group on all client computers it
works out nicely.

saqib
http://security-basics.blogspot.com/


Current thread: